Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

Cisco PIX Access-list order

Hello,

short question:

In what order will the access-list on a cisco pix be treated ?

I know that it is from top to down and the first matching will be used.

But how is the behaviour when you use names instead of numbers ?

e.g:

access-list 120 permit IP any any

access-list ipsec permit ip any any

Thanks for your help

Kai

2 REPLIES
Gold

Re: Cisco PIX Access-list order

After creating of access-list you need apply this list to interface (or to crypto map etc..) and every interface can has only one access list .... so there are no relation between access-list and if traffic flows through firewall checked is only applied access list

M.

Hope that helps rate if it does

New Member

Re: Cisco PIX Access-list order

Ok, then this means no matter what kind of number or name for the access-list because it will be always applied to crypto map with matching address/access-list

right ?

164
Views
0
Helpful
2
Replies